2021 CVE Vulnerabilities

23,445 CVEs published in 2021.

Filter:MEDIUMClear
CVE IDSeverityCVSSDescription
CVE-2021-44554MEDIUM5.3Thinfinity VirtualUI before 3.0 allows a malicious actor to enumerate users registered in the OS (Windows) through the /...
CVE-2021-44263MEDIUM5.4Gurock TestRail before 7.2.4 mishandles HTML escaping.
CVE-2021-44163MEDIUM6.1Chain Sea ai chatbot backend has improper filtering of special characters in URL parameters, which allows a remote attac...
CVE-2021-45105MEDIUM5.9Apache Log4j2 versions 2.0-alpha1 through 2.16.0 (excluding 2.12.3 and 2.3.1) did not protect from uncontrolled recursio...
CVE-2021-41496MEDIUM5.5Buffer overflow in the array_from_pyobj function of fortranobject.c in NumPy < 1.19, which allows attackers to conduct a...
CVE-2021-41495MEDIUM5.3Null Pointer Dereference vulnerability exists in numpy.sort in NumPy &lt and 1.19 in the PyArray_DescrNew function due t...
CVE-2021-43840MEDIUM6.5message_bus is a messaging bus for Ruby processes and web clients. In versions prior to 3.3.7 users who deployed message...
CVE-2021-34141MEDIUM5.3An incomplete string comparison in the numpy.core component in NumPy before 1.22.0 allows attackers to trigger slightly ...
CVE-2021-33430MEDIUM5.3A Buffer Overflow vulnerability exists in NumPy 1.9.x in the PyArray_NewFromDescr_int function of ctors.c when specifyin...
CVE-2021-40852MEDIUM6.1TCMAN GIM is affected by an open redirect vulnerability. This vulnerability allows the redirection of user navigation to...
CVE-2021-38883MEDIUM5.4IBM Business Automation Workflow 18.0, 19.0, 20,0 and 21.0 and IBM Business Process Manager 8.5 and 8.6 are vulnerable t...
CVE-2021-37863MEDIUM5.7Mattermost 6.0 and earlier fails to sufficiently validate parameters during post creation, which allows authenticated at...
CVE-2021-37862MEDIUM5.4Mattermost 6.0 and earlier fails to sufficiently validate the email address during registration, which allows attackers ...
CVE-2021-20607MEDIUM5.5Integer Underflow vulnerability in Mitsubishi Electric GX Works2 versions 1.606G and prior, Mitsubishi Electric MELSOFT ...
CVE-2021-20606MEDIUM5.5Out-of-bounds Read vulnerability in Mitsubishi Electric GX Works2 versions 1.606G and prior, Mitsubishi Electric MELSOFT...
CVE-2021-0903MEDIUM6.7In apusys, there is a possible out of bounds write due to a missing bounds check. This could lead to local escalation of...
CVE-2021-0902MEDIUM4.4In apusys, there is a possible out of bounds read due to an incorrect bounds check. This could lead to local information...
CVE-2021-0901MEDIUM6.7In apusys, there is a possible memory corruption due to a missing bounds check. This could lead to local escalation of p...
CVE-2021-0900MEDIUM4.4In apusys, there is a possible out of bounds read due to an incorrect bounds check. This could lead to local information...
CVE-2021-0899MEDIUM6.7In apusys, there is a possible memory corruption due to a use after free. This could lead to local escalation of privile...
CVE-2021-0898MEDIUM6.7In apusys, there is a possible memory corruption due to a use after free. This could lead to local escalation of privile...
CVE-2021-0897MEDIUM6.7In apusys, there is a possible out of bounds write due to a missing bounds check. This could lead to local escalation of...
CVE-2021-0896MEDIUM6.7In apusys, there is a possible out of bounds write due to a missing bounds check. This could lead to local escalation of...
CVE-2021-0895MEDIUM6.7In apusys, there is a possible out of bounds write due to a missing bounds check. This could lead to local escalation of...
CVE-2021-0894MEDIUM6.7In apusys, there is a possible out of bounds write due to a missing bounds check. This could lead to local escalation of...

Check if your code is affected by 2021 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now